Vulnerabilities > Alcatel Lucent > Omnipcx > Critical

DATE CVE VULNERABILITY TITLE RISK
2007-09-18 CVE-2007-3010 Improper Input Validation vulnerability in Alcatel-Lucent Omnipcx 7.1
masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.
network
low complexity
alcatel-lucent CWE-20
critical
10.0
2002-12-31 CVE-2002-1691 Unspecified vulnerability in Alcatel-Lucent Omnipcx 4400
Alcatel OmniPCX 4400 installs known user accounts and passwords in the /etc/password file by default, which allows remote attackers to gain unauthorized access.
network
low complexity
alcatel-lucent
critical
10.0